IN THE UNITED STATES PATENT AND TRADEMARK OFFICE 



n " In re Application 



a> 



►0 
o 



Inventor(s): 



SC/Serial No.: 
Filed: 



Lawrence Cui, 

Mark Vladimirovich Marchukov 
Phan T. Vo 
Anurag Mendhekar 
Mohan Vishwanath 

Unknown 

Herewith 



o 



PATENT APPLICATION 



Title: METHOD AND APPARATUS FOR 
PROXY SERVER COOKIES 



CERTIFICATE OF MAILING BY "EXPRESS MAIL" 
UNDER 37 C.F.R. §1.10 

"Express Mail" mailing label number: EL32829647US 
Date of Mailing: May 10,1 999 

I hereby certify that this correspondence is being deposited with the United States 
Postal Service, utilizing the "Express Mail Post Office to Addressee" service addressed to Box 
PATENT APPLICATION, Assistant Commissioner for Patents, Washington, DC 20231 and 
mailed on the above Date of Mailing with the above "Express Mail" mailing label number. 




Adam B. Toups 

Signature Date: Mav 10. 1999 



UTILITY PATENT APPLICATION TRANS MITTAL LETTER UNDER 37 C.F.R §1.53ih) 



Box PATENT APPLICATION 
Assistant Commissioner for Patents 
Washington, DC 20231 

Sir: 

Transmitted herewith for filing is the patent application identified as follows: 



-1- 

Attorney Docket No.:OLAI1006.002MCF/PPT 
ppt/olai/1 006.002 



105.001:05/06/99 



Inventor(s): Lawrence Cui 

Mark Vladimirovich Marchukov 
Phan T. Vo 
Anurag Mendhekar 
Mohan Vishwanath 

Title: METHOD AND APPARATUS FOR 
PROXY SERVER COOKIES 

No. of pages in Specification:^.; No= of Claims: 1 . 

No. of Sheets of Drawings:_Q_; Formal: , Informal: 



Attorney Docket No. :0LAI1 006.002 MCF/PPT 
ppt/olai/1 006.002 



-2- 



105.001:05/06/99 



Also enclosed are: 
A Declaration. 

An Assignment and Recordation Form Cover Sheet. 

A certified copy of a priority application. 

A Power of Attorney. 

A Statement Claiming Small Entity Status. 

An Information Disclosure Statement under 37 C.F.R. §1 .56. 



The filing fee pursuant to 37 C.F.R. §1.16 is determined as follows: 

Rate 
Small Entity/ 

No. No. Other Than 
Filed Extra Small Entity 



Basic 
Fee 






$380.00 
$760.00 




$380 


Total 

Claims 1 


- 20 = 0 * 


X 


$ 9.00 
$ 18.00 




$0 


Independent 
Claims 1 


- 3 = 0 * 


X 


$ 39.00 
$ 78.00 




$0 


First Presentation of 

Multiple Dependent Claim(s) 




$130.00 
$260.00 




$ 








Total 




$380 



*lf the difference is less than zero, enter "0". 

_^c_ Please charge Deposit Account No. 06-1325 in the amount of $380. A duplicate copy 
of this authorization is enclosed. 



A check in the amount of $ to cover the filing fee ($ ), and assignment recording 

fee ($40.00), if applicable, is enclosed. 



-3- 

Attorney Docket No.;OLAM006.002MCF/PPT 
ppt/olai/1 006.002 



105.001:05/06/99 



X_ The Commissioner is hereby authorized to charge underpayment of any additional fees 
(including those listed below) or credit any overpayment associated with this 
communication to Deposit Account No. 06-1325. A duplicate copy of this 
authorization is enclosed. 

X Any additional filing fees under 37 C.F.R. §1.16. 
JL Any patent application processing fees under 37 C.F.R. §1.17. 



This application is filed pursuant to 37 C.F.R. § 1.53(b) in the name of the above- 
identified Inventor(s). 



Please direct all correspondence concerning the above-identified application to the 
following address: 



This application claims priority to an earlier-filed Provisional patent application, 
as set forth more fully in this application. 



Martin C. Fliesler 
FLIESLER, DUBB, MEYER & LOVEJOY LLP 
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METHOD AND APPARATUS FOR 
PROXY SERVER COOKIES 

Inventor: 

5 

Lawrence Cui 
Mark Vladimirovich Marchukov 
Phan T. Vo 
Anurag Mendhekar 

1 0 Mohan Vishwanath 



BACKGROUND OF THE INVENTION 

15 

The present invention relates generally to a Web technology and more particularly 
to methods and apparatus for proxy server cookies. 

Cookies have been used in the World Wide Web (Web) to track a visitor's session 
state. However, many browsers running on devices with limited memory capacity do not 
20 or cannot accept cookies. Also, for privacy reasons, many browsers also disable cookie 
handling mechanisms of their browsers. As a result, these browsers cannot access web 
pages that mandate cookie handling. 

Thus there is a need for an alternative method to handle cookies in the Web. 



25 SUMMARY 



The present invention is on methods and apparatus that can handle cookies for 
devices with limited memory capacity. 
30 In one embodiment, this is done by a server, which centralizes cookie handling 

for browsers on a number of clients. Not only does the invention solve the problems of 
browsers that cannot handle cookies, the invention also protects the privacy of surfers by 
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DETABLED DESCRIPTION OF THE INVENTION 

5 One embodiment of the present invention is based on the concept of dynamic 

session, which starts when a browser sends a fresh request to a proxy server to access 
information on the Web. 

In the present invention, the Web is defined as a network of computers that publish 
information using a standard protocol, such as HTTP, FTP or TCP/IP. A dynamic session 

10 is defined as a request that the proxy server has no prior memory of 

When a new session is started, a unique session id can be generated. Within the 
same session, all embedded links in the response page can then be stamped with the same 
session id. A sessioned request is defined as a request that has session id information in 
addition to the request itself The proxy server can relate a sessioned request to a session 

15 via the session id. The session continues as long as the user stays in the links of the first 

page or pages generated from links in the first page. A session expires when its age reaches 
the lifetime set by the server. The session lifetime can be configurable through a 
configuration parameter. Due to the dynamic nature of the session, users do not have to log 
into the proxy server that provides centralized cookie handling services. Same user can start 

20 multiple sessions at the same time. 

In one embodiment, a client sends a fresh request for a particular URL to the proxy 
server. The proxy server first checks the request header to determine whether the browser 
of the client is capable of handling cookies. If the browser accepts cookies, and if the 
browser does not intend to disable cookie-handling capabilities, the proxy server would not 

25 provide cookie service. Otherwise, the proxy server first generates a session id to identify 
the new session. 

The proxy server then sends the request to the targeted external web site to get the 
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corresponding page. After getting the response page, the proxy server first strips off any 
cookies set by the external web site from the response header. The cookies, owned by a 
particular session and identified by the session id, are typically stored in a cookie repository 
for subsequent requests within the session. 

In one embodiment, the session id, or its encoded or encrypted version, is in a 
configuration of a URL, or an address the web browser recognizes. 

The proxy server then appends the session id or its encoded or encrypted version 
to all of the links embedded in the response page. Then, the proxy server sends the modified 
response page, with the new header, to the corresponding client. 

In one embodiment, when a sessioned request is received, the proxy first retrieves 
and stripes off the session id from the request URL. The session id and the URL are then 
used to retrieve the cookies from the cookie repository. The proxy then uses the cookies 
retrieved to generate a cookie header. The new cookie header is then appended to the 
original request header. The session information is removed from the URL. The request 
is then sent to the external web site to fetch the page. After receiving the page from the 
external web site, the same procedure as that of handling a fresh request is used to process 
the header and the page. 
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CLAIMS 



1 1. A method to handle cookies in a response Web page requested by a client 

2 comprising the steps of: 

3 generating a session id to identify a new session; 

4 striping off any cookies set by an external web site from the response header of the 

5 response Web page; 

6 appending the session id to all of the links embedded in the response page; and 

7 sending the modified response page, with the new header, to the client. 
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ABSTRACT 



Methods and apparatus to handle cookies in a response Web page requested by a client. 
One method includes the steps of (a) generating a session id to identify a new session, (b) 
striping off any cookies set by an external web site from the response header of the 
response Web page, (c) appending the session id to all of the links embedded in the response 
page, and (d)sending the modified response page, with the new header, to the client. 
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